5.3

CVE-2022-3192

Improper Check for Unusual or Exceptional Conditions

Improper Input Validation vulnerability in ABB AC500 V2 PM5xx allows Client-Server Protocol Manipulation.This issue affects AC500 V2: from 2.0.0 before 2.8.6.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Abb ≫ Ac500 Cpu Firmware Version >= 2.0.0 < 2.8.6
   Abb ≫ Pm5630-2eth Version 2.0
   Abb ≫ Pm5650-2eth Version 2.0
   Abb ≫ Pm5670-2eth Version 2.0
   Abb ≫ Pm5675-2eth Version 2.0
   Abb ≫ Pm571-eth-v14x Version 2.0
   Abb ≫ Pm571-v14x Version 2.0
   Abb ≫ Pm572 Version 2.0
   Abb ≫ Pm573-eth Version 2.0
   Abb ≫ Pm581-eth-v14x Version 2.0
   Abb ≫ Pm581-v14x Version 2.0
   Abb ≫ Pm582 Version 2.0
   Abb ≫ Pm582-arcnet Version 2.0
   Abb ≫ Pm582-eth Version 2.0
   Abb ≫ Pm582-v14x Version 2.0
   Abb ≫ Pm583-eth Version 2.0
   Abb ≫ Pm585-eth Version 2.0
   Abb ≫ Pm585-mc-kit Version 2.0
   Abb ≫ Pm590-arcnet-v14x Version 2.0
   Abb ≫ Pm590-eth Version 2.0
   Abb ≫ Pm590-eth-v14x Version 2.0
   Abb ≫ Pm590-mc-kit Version 2.0
   Abb ≫ Pm590-v14x Version 2.0
   Abb ≫ Pm591-2eth Version 2.0
   Abb ≫ Pm591-arcnet-v14x Version 2.0
   Abb ≫ Pm591-eth Version 2.0
   Abb ≫ Pm591-eth-v14x Version 2.0
   Abb ≫ Pm591-v14x Version 2.0
   Abb ≫ Pm592-eth Version 2.0
   Abb ≫ Pm595-4eth-f Version 2.0
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.56% 0.419
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 5.3 3.9 1.4
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
cybersecurity@ch.abb.com 5.3 3.9 1.4
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
CWE-754 Improper Check for Unusual or Exceptional Conditions

The product does not check or incorrectly checks for unusual or exceptional conditions that are not expected to occur frequently during day to day operation of the product.

https://search.abb.com/library/Download.aspx?DocumentID=3ADR011162&LanguageCode=en&DocumentPartId=&Action=Launch
Vendor Advisory